-
Security Analyst - Hybrid
- MSys Inc. (Richmond, VA)
-
Job summary:
Title:
Security Analyst - Hybrid
Location:
Richmond, VA, United States
Length and terms:
Long term - W2 or C2C
Position created on 10/17/2025 04:39 pm
Job description:
**Long term***In person interview***Hybrid*
Key Responsibilities:
+ Monitor security alerts and logs for tolling related infrastructure using existing SIEM and other monitoring tools.
+ Analyze, investigate, and triage security events and potential incidents involving tolling back office systems and devices.
+ Coordinate with Tolling Division personnel, vendors, and OT operations teams to facilitate incident response, forensics, and remediation activities.
+ Assist in onboarding tolling systems into the OT cybersecurity monitoring process, including asset inventory, log ingestion, and configuration baselines.
+ Perform security assessments and reviews of tolling systems for vulnerabilities, misconfigurations, and gaps in compliance with standards such as NIST 800-53, NIST 800-82, and agency specific policies.
+ Participate in the development and maintenance of incident response procedures and playbooks specific to tolling infrastructure.
+ Contribute to regular security reporting, dashboards, and metrics for tolling systems.
+ Collaborate with internal and external stakeholders to enhance the security posture of the tolling environment.
Qualifications
Required:
+ Bachelor’s degree in Cybersecurity, Information Technology, Engineering, or a related field OR equivalent experience.
+ 3+ years of experience in cybersecurity, with at least 1 year supporting azure, IIS, Active Directory, SQL database, and critical infrastructure environments.
+ Familiarity with SIEM tools, log analysis, and incident response workflows.
+ Familiarity with PCI DSS 4.0+ security requirements.
+ Working knowledge of networking protocols, system hardening, and asset inventory practices.
+ Strong analytical, communication, and collaboration skills.
Preferred:
+ Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment.
+ Knowledge of security frameworks such as PCI DSS, NIST 800-53, NIST 800-82, or CIS Controls.
+ Certifications such as GICSP, GCIA, CompTIA Security+, or CISSP.
+ Experience working with third party vendors and supporting environments with both state managed and vendor managed components.
Highly Desired Skills:
+ Knowledge of security frameworks such as PCI DSS, SEC 530, NIST 800-53, NIST 800-82, or CIS Controls. 5 Years
+ Experience supporting or securing tolling systems, traffic management infrastructure, or roadside equipment. 5 Years
+ Experience working with third party vendors and supporting environments with both state-managed and vendor-managed components. 5 Years
Contact the recruiter working on this position:
The recruiter working on this position is Mahesh Kodur(Raghu team)
His/her contact number is His/her contact email is [email protected]
Our recruiters will be more than happy to help you to get this contract.
-